exploits-and-vulnerabilities16.715 min read "Void Banshee Exploits Zombie Internet Explorer in Zero-Day Windows Attacks"
The APT group Void Banshee exploited the zero-day vulnerability CVE-2024-38112 to execute files through the disabled Internet Explorer using MSHTML, targeting Windows users in North America, Europe, and Southeast Asia. This vulnerability, used to deploy the Atlantida info-stealer, was discovered and reported by Trend Micro's Zero Day Initiative and has since been patched by Microsoft. The attack highlights the risks posed by unsupported Windows components like Internet Explorer, which can still be exploited by threat actors.
1 year ago•Source: Trend Micro